1 - 10 of 35

Detailed Analysis - Troj/Batten-A - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Troj~Batten-A/detailed-analysis.aspx

18 Apr 2007 ... Troj/Batten-A is a batch script Trojan that stops security-related services and modifies security-related registry entries. Troj/Batten-A is a batch ...

Troj/Batten-A - Viruses and Spyware - Web Threat, Virus ... - Sophos

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Troj~Batten-A.aspx

18 Apr 2007 ... Aliases. bat_batten.a. Characteristics. Turns off anti virus applications; Modifies data on the computer; Reduces system security. Affected ...

Detailed Analysis - W32/Rbot-GRH - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GRH/detailed-analysis.aspx

The file a.bat is detected as Troj/Batten-A. W32/Rbot-GRH spreads - to computers vulnerable to common exploits, including: SRVSVC (MS06-040), WKS ...

Detailed Analysis - W32/Rbot-GSP - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GSP/detailed-analysis.aspx

When first run W32/Rbot-GSP copies itself to <System>\winupdate.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-GWX - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GWX/detailed-analysis.aspx

... arbitrary files - start a remote shell - steal information - reduce system security. W32/Rbot-GWX creates "C:\del.bat" which is detected as Troj/Batten-A.

Detailed Analysis - W32/Agobot-AIY - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Agobot-AIY/detailed-analysis.aspx

When first run W32/Agobot-AIY copies itself to <System>\msnssgr.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-GQW - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GQW/detailed-analysis.aspx

When first run W32/Rbot-GQW copies itself to <System>\updaterarwin.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-AIP - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-AIP/detailed-analysis.aspx

The file a.bat is detected by Sophos as Troj/Batten-A. It attempts to disable a number of security-related services and then attempts to delete itself. W32/Rbot- AIP ...

Detailed Analysis - Troj/IRCBot-AAF - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Troj~IRCBot-AAF/detailed-analysis.aspx

When first run Troj/IRCBot-AAF copies itself to <System>\msnsgs.exe and creates the file <Root>\a.bat. The file a.bat is detected as Troj/Batten-A.

Detailed Analysis - W32/Rbot-GAN - Viruses and Spyware - Web ...

http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/W32~Rbot-GAN/detailed-analysis.aspx

10 Jan 2007 ... When first run W32/Rbot-GAN copies itself to <System>\ctfmoom.exe and creates the file \a.bat. The file a.bat is detected as Troj/Batten-A.

1 - 10 of 35